Adversarial Attacks on Graph Classification via Bayesian Optimisation

11/04/2021
by   Xingchen Wan, et al.
14

Graph neural networks, a popular class of models effective in a wide range of graph-based learning tasks, have been shown to be vulnerable to adversarial attacks. While the majority of the literature focuses on such vulnerability in node-level classification tasks, little effort has been dedicated to analysing adversarial attacks on graph-level classification, an important problem with numerous real-life applications such as biochemistry and social network analysis. The few existing methods often require unrealistic setups, such as access to internal information of the victim models, or an impractically-large number of queries. We present a novel Bayesian optimisation-based attack method for graph classification models. Our method is black-box, query-efficient and parsimonious with respect to the perturbation applied. We empirically validate the effectiveness and flexibility of the proposed method on a wide range of graph classification tasks involving varying graph properties, constraints and modes of attack. Finally, we analyse common interpretable patterns behind the adversarial samples produced, which may shed further light on the adversarial robustness of graph classification models.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/06/2018

Adversarial Attack on Graph Structured Data

Deep learning on graph structures has shown exciting results in various ...
research
06/13/2020

Defensive Approximation: Enhancing CNNs Security through Approximate Computing

In the past few years, an increasing number of machine-learning and deep...
research
12/12/2020

Query-free Black-box Adversarial Attacks on Graphs

Many graph-based machine learning models are known to be vulnerable to a...
research
09/27/2021

Query-based Adversarial Attacks on Graph with Fake Nodes

While deep neural networks have achieved great success on the graph anal...
research
07/09/2020

Node Copying for Protection Against Graph Neural Network Topology Attacks

Adversarial attacks can affect the performance of existing deep learning...
research
05/30/2017

Dynamics Based Features For Graph Classification

Numerous social, medical, engineering and biological challenges can be f...
research
07/15/2023

RegExplainer: Generating Explanations for Graph Neural Networks in Regression Task

Graph regression is a fundamental task and has received increasing atten...

Please sign up or login with your details

Forgot password? Click here to reset